VYPR
Critical severity9.8NVD Advisory· Published Dec 1, 2017· Updated May 13, 2026

CVE-2017-10899

CVE-2017-10899

Description

SQL injection vulnerability in the A-Reserve and A-Reserve for MT cloud versions 3.8.6 and earlier allows an attacker to execute arbitrary SQL commands via unspecified vectors.

Affected products

4
  • Ark Web/A Reserve2 versions
    cpe:2.3:a:ark-web:a-reserve:*:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:ark-web:a-reserve:*:*:*:*:*:*:*:*range: <=3.8.6
    • cpe:2.3:a:ark-web:a-reserve:*:*:*:*:*:movabletype:*:*range: <=3.8.6
  • Princeton Ltd./A-Reservev5
    Range: versions 3.8.6 and earlier
  • Princeton Ltd./A-Reserve for MT cloudv5
    Range: versions 3.8.6 and earlier

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

1

News mentions

0

No linked articles in our index yet.